Описание
NETGEAR JNR1010 devices before 1.0.0.32 have Incorrect Access Control because the ok value of the auth cookie is a special case.
Ссылки
- ExploitThird Party Advisory
- ExploitThird Party Advisory
- ExploitThird Party Advisory
- ExploitMailing ListThird Party Advisory
- ExploitThird Party AdvisoryVDB Entry
- ExploitThird Party Advisory
- ExploitThird Party Advisory
- ExploitThird Party Advisory
- ExploitMailing ListThird Party Advisory
- ExploitThird Party AdvisoryVDB Entry
Уязвимые конфигурации
Конфигурация 1Версия до 1.0.0.32 (исключая)
Одновременно
cpe:2.3:o:netgear:jnr1010_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:netgear:jnr1010:-:*:*:*:*:*:*:*
EPSS
Процентиль: 63%
0.00444
Низкий
9.8 Critical
CVSS3
7.5 High
CVSS2
Дефекты
CWE-613
Связанные уязвимости
github
больше 3 лет назад
NETGEAR JNR1010 devices before 1.0.0.32 have Incorrect Access Control because the ok value of the auth cookie is a special case.
EPSS
Процентиль: 63%
0.00444
Низкий
9.8 Critical
CVSS3
7.5 High
CVSS2
Дефекты
CWE-613